bt_gatt_check_perm of the file subsys/bluetooth/host/gatt.c of the component GATT Host. Performing a manipulation of the argument attr results in improper access controls.
This vulnerability is cataloged as CVE-2026-2411. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.
Intelligence View
⚡ tsecurity.de Intelligence
CVE-2026-2411 | ZephyrProject Zephyr up to 4.4.x GATT Host gatt.c bt_gatt_check_perm attr access control
Reagiere als Erste:r — dein Feedback zählt!
A vulnerability, which was classified as problematic, has been found in ZephyrProject Zephyr up to 4.4.x. This affects the function
SOCIAL SHARE CARD GENERATOR